Attack traffic never reaches your server

Filtering sits upstream of the network your machine is on, and it is on before you order.

AlwaysOn by default

Nothing to enable or configure

€0What it costs

Included on every plan

TCP + UDPProtocols filtered

Game protocols recognised too

UpstreamWhere it filters

Before your uplink, not on it

Where the filtering happens

Protection that runs on your own server is not protection. By the time a flood reaches the machine it has already crossed your uplink, and a saturated uplink drops legitimate traffic just as effectively as a saturated CPU does.

Virtbase servers sit behind aurologic GmbH's filtering, which is upstream of the network the machine is on. Attack traffic is scrubbed before it arrives, so your uplink never carries it and your server never sees it.

That also means there is nothing for you to run, tune or keep patched. There is no agent on the machine, no rule to write, and no threshold to guess.

Accurate, not just large

Two things matter in filtering and providers usually talk about only the first.

Capacity absorbs a flood. Accuracy decides whether your players stay connected while it happens. aurologic's filtering is packet-level and fine-grained, and it recognises game server protocols specifically rather than treating all UDP as suspicious — which is what makes a game server survive an attack instead of being protected into unreachability.

Where a protocol allows it, challenge-response separates a real client from a spoofed one, so sessions that were already working keep working.

       attacker traffic


   ┌──────────────────────┐
   │  aurologic filtering │  TCP/UDP, per-packet
   │  challenge-response  │  game protocols known
   └──────────┬───────────┘
              │  clean traffic only

   ┌──────────────────────┐
   │  SkyLink, Eygelshoven│  DE-CIX · Speed-IX
   └──────────┬───────────┘

        your uplink ──▶ your server

Your own rules, on top

Filtering decides what reaches the network. The firewall decides what reaches your ports.

Learn more
Usage
CPU
13.37% / 4 vCores
RAM
6.8GB / 16GB
Disk
53GB / 1TB
Network
31GB
15GB
Last reboot
3 hours ago

An attack, or just a busy day?

Live CPU, memory and network graphs, so a traffic spike is something you can look at rather than guess about.

Learn more

DDoS protection is not a firewall

These get conflated constantly, and the difference matters when something goes wrong.

DDoS filtering is automatic, upstream and about volume and shape. It has no opinion about which of your ports should be open — it removes traffic that is attacking you and passes the rest.

The firewall is yours, it runs at your server's edge, and it is about policy. It is what closes the SSH port to everyone except your office, or leaves 25565 open only to the people who should reach your game server.

An attack that saturates a link is a job for the first. A port that should never have been open is a job for the second. Running one does not remove the need for the other, which is why both are included rather than sold as tiers.

What you should still do

Filtering is not an excuse to leave the machine open. Close the ports you do not use with firewall rules, keep services patched, and take a backup before you change anything that matters.

Attacks that succeed against a protected server almost never succeed by volume. They succeed because something was listening that should not have been.

Questions about DDoS protection

EPYC-01

€3.99per month
  • 1 vCore

  • 4GB RAM

  • 50GB NVMe SSD

  • 1 IPv4 + IPv6 /64 Subnet

  • SkyLink Data Center, NL

Configure now

EPYC-02

€7.99per month
  • 2 vCores

  • 8GB RAM

  • 100GB NVMe SSD

  • 1 IPv4 + IPv6 /64 Subnet

  • SkyLink Data Center, NL

Configure now

EPYC-03

Popular
€15.20per month
  • 4 vCores

  • 16GB RAM

  • 150GB NVMe SSD

  • 1 IPv4 + IPv6 /64 Subnet

  • SkyLink Data Center, NL

Configure now

EPYC-04

€18.99per month
  • 4 vCores

  • 24GB RAM

  • 170GB NVMe SSD

  • 1 IPv4 + IPv6 /64 Subnet

  • SkyLink Data Center, NL

Configure now

EPYC-05

€30.30per month
  • 6 vCores

  • 36GB RAM

  • 200GB NVMe SSD

  • 1 IPv4 + IPv6 /64 Subnet

  • SkyLink Data Center, NL

Configure now

EPYC-06

€39.59per month
  • 8 vCores

  • 48GB RAM

  • 250GB NVMe SSD

  • 1 IPv4 + IPv6 /64 Subnet

  • SkyLink Data Center, NL

Configure now

EPYC-07

€46.79per month
  • 10 vCores

  • 56GB RAM

  • 270GB NVMe SSD

  • 1 IPv4 + IPv6 /64 Subnet

  • SkyLink Data Center, NL

Configure now

EPYC-08

€53.90per month
  • 12 vCores

  • 64GB RAM

  • 300GB NVMe SSD

  • 1 IPv4 + IPv6 /64 Subnet

  • SkyLink Data Center, NL

Configure now